ZeroHour

CVE-2022-37138

PoC
CVSS 3.1
9.8 critical
EPSS
1%p65
Published
()
Modified
Description

Loan Management System 1.0 is vulnerable to SQL Injection at the login page, which allows unauthorized users to login as Administrator after injecting username form.

Vendors
razormist
Products
loan management system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.